[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247974

 
 

909

 
 

194654

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

DSA-2478-1 sudo -- parsing error

ID: oval:org.secpod.oval:def:600813Date: (C)2012-05-25   (M)2022-10-10
Class: PATCHFamily: unix




It was discovered that sudo misparsed network masks used in Host and Host_List stanzas. This allowed the execution of commands on hosts, where the user would not be allowed to run the specified command.

Platform:
Debian 6.0
Product:
sudo
Reference:
DSA-2478-1
CVE-2012-2337
CVE    1
CVE-2012-2337
CPE    21
cpe:/a:todd_miller:sudo:1.6
cpe:/a:todd_miller:sudo:1.6.8
cpe:/a:todd_miller:sudo:1.6.7
cpe:/a:todd_miller:sudo:1.6.7p5
...

© SecPod Technologies